Vulnerability Details CVE-2007-4406
ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after a join from a server with an older timestamp (TS), which allows remote attackers to gain control of a channel during a split.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 68.4%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2007-4406
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.01
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.02
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.03
-
cpe:2.3:a:universal_ircd:ircu:2.10.12.04